RSA Authentication Manager Backup Encryption
2 months ago
Originally Published: 2020-08-19
Article Number
000059382
Applies To

RSA Product Set: RSA SecurID
RSA Product/Service Type: Authentication Manager
RSA Version/Condition: 8.x
Platform: Linux
O/S Version: SUSE Enterprise Linux
 

Issue
A customer has 'Data Encrypted at Rest' questions relating to the RSA Authentication Manager backup:
  1. Is the RSA Authentication Manager backup encrypted?
  2. What encryption algorithm is used for the RSA Authentication Manager backup?
Resolution
RSA Authentication Manager 8.x backups are password protected. 

Data in an Authentication Manager backup is effectively double-encrypted. The backup file is encrypted with an AES cipher using a 256-bit key that is derived from the password entered by the administrator (at the time of backup). The sensitive data within the backup is also encrypted with the data-at-rest encryption mechanism that is used within the Authentication Manager database (also AES with a 256-bit key).